Hackers use AI prompts and boosted search results to deliver malware — Huntress warns
Hackers are seeding search results with AI‑generated commands that install malware — what happened and how to stay safe Security firm Huntress warns of a new social‑engineering trick: attackers use AI assistants to craft dangerous terminal commands, publish the chat publicly, then pay to boost that page in Google. Unsuspecting users searching for how‑to instructions may follow the command and inadvertently install malware like AMOS. The reported attack chain starts with an attacker prompting a chatbot (Huntress tested ChatGPT and Grok) to produce a copy‑pasteable command for a common task (e.g. “clear disk space on Mac”). The attacker posts the dialog publicly, promotes it so it ranks in search, and waits for victims to execute the command in their terminal. Why this is dangerous It bypasses typical red flags —…
